Техническая информация
- [<HKCU>\Software\Microsoft\Windows\CurrentVersion\Run] 'tabside' = '%PROGRAM_FILES%\tabside\tabside.exe'
- %PROGRAM_FILES%\tabside\tabside.exe
- %PROGRAM_FILES%\tabside\tabsidedata.dat
- %TEMP%\nsx2.tmp\nsUtil.dll
- %TEMP%\nsx2.tmp\AccessControl.dll
- %PROGRAM_FILES%\tabside\tabsider.dll
- %TEMP%\nsx2.tmp\nsBase64.dll
- %PROGRAM_FILES%\tabside\tabside.exe
- %PROGRAM_FILES%\tabside\uninstall.exe
- %TEMP%\nsx2.tmp\nsUtil.dll
- %TEMP%\nsx2.tmp\nsBase64.dll
- %TEMP%\nsx2.tmp\AccessControl.dll
- 'www.ta##ide.com':80
- www.ta##ide.com/info/doodoo01.htm
- www.ta##ide.com/count/install.php?pa####################################
- DNS ASK www.ta##ide.com
- ClassName: 'Shell_TrayWnd' WindowName: ''
- ClassName: 'Indicator' WindowName: ''